Vulnerabilities > Intel > Quartus Prime > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-08-15 CVE-2023-24478 Use of Insufficiently Random Values vulnerability in Intel Quartus Prime
Use of insufficiently random values for some Intel Agilex(R) software included as part of Intel(R) Quartus(R) Prime Pro Edition for linux before version 22.4 may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-330
5.5
2023-02-16 CVE-2022-26888 Cross-site Scripting vulnerability in Intel Quartus Prime
Cross-site scripting in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable information disclosure via local access.
network
low complexity
intel CWE-79
4.1
2020-11-12 CVE-2020-8767 Improper Handling of Exceptional Conditions vulnerability in Intel Quartus Prime
Uncaught exception in the Intel(R) 50GbE IP Core for Intel(R) Quartus Prime before version 20.2 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-755
5.5
2020-11-12 CVE-2020-8737 Unspecified vulnerability in Intel Quartus Prime and Stratix 10 Fpga Firmware
Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.1 may allow an unauthenticated user to potentially enable escalation of privilege and/or information disclosure via physical access.
low complexity
intel
6.8
2019-12-16 CVE-2019-14604 NULL Pointer Dereference vulnerability in Intel Quartus Prime
Null pointer dereference in the FPGA kernel driver for Intel(R) Quartus(R) Prime Pro Edition before version 19.3 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-476
5.5